SECURITY SERVICE ORCHESTRATION FUNCTION IN A SERVICE-BASED ARCHITECTURE

    公开(公告)号:US20240323103A1

    公开(公告)日:2024-09-26

    申请号:US18574850

    申请日:2021-07-07

    IPC分类号: H04L41/5006 H04L41/5009

    CPC分类号: H04L41/5006 H04L41/5009

    摘要: A method is implemented by a security service orchestration function (SSOF) in a communication infrastructure, that includes a plurality of PLMNs and a plurality of enterprises, for orchestration of a security service level agreement (S-SLA). The method includes receiving, by a SSOF in a HPLMN, a S-SLA request from one or more of the enterprises. Each S-SLA request includes a plurality of requirements. The HPLMN corresponds to one of the plurality of PLMNs. The method also includes converting each S-SLA request into a consistent and unified S-SLA offerable to each enterprise. The consistent and unified S-SLA includes security attributes that the HPLMN is capable of providing. The method also includes offering the consistent and unified S-SLA to each enterprise that submitted the S-SLA request. The method further includes transforming each S-SLA request from the enterprises into security policies and controls to be enforced within the HPLMN.

    MAINTAINING CONFIGURABLE SYSTEMS BASED ON CONNECTIVITY DATA

    公开(公告)号:US20240314044A1

    公开(公告)日:2024-09-19

    申请号:US18121387

    申请日:2023-03-14

    发明人: Niall Brady

    摘要: Methods, apparatus, and processor-readable storage media for maintaining configurable systems based on connectivity data are provided herein. An example computer-implemented method includes: obtaining connectivity data, from a plurality of components of a system, indicating usage behavior of the plurality of components with respect to a first configuration of the system; providing, to a machine learning regression model, at least a portion of the connectivity data corresponding to a particular period of time, wherein the machine learning regression model generates a regression score indicating a probability of a change from the first configuration to one or more second configurations; causing an adjustment to a forecasted value associated with the one or more second configurations of the system based at least in part on the generated regression score; and initiating one or more automated actions based at least in part on one or more results of the adjusting.

    Defined network SDN system with parent child network updates

    公开(公告)号:US12095616B2

    公开(公告)日:2024-09-17

    申请号:US18606715

    申请日:2024-03-15

    摘要: A system includes a network of multiple network domains, each network domain includes a software defined network (SDN) controller. Each SDN controller includes a network interface circuitry, a processor and a memory. The network interface circuitry provides a communicative coupling with at least one domain of the multiple network domains. The memory includes instructions that when executed by the processor, performs a network update comprising adding links, subtracting links or reporting a status of links in at least one network domain upon receiving a network update request, and performs sending and receiving the network update request to a second SDN controller, where the network update request is part of real-time publish/subscribe protocol, the sending network update request includes a publish message having a specified topic and a set of QoS attributes, and the receiving a network update request includes subscribing to the specified topic and the set of QoS attributes.

    CREATING DECENTRALIZED MULTI-PARTY TRACEABILITY OF SLA USING A BLOCKCHAIN

    公开(公告)号:US20240291730A1

    公开(公告)日:2024-08-29

    申请号:US18115217

    申请日:2023-02-28

    申请人: Red Hat, Inc.

    IPC分类号: H04L41/5006 H04L9/40

    CPC分类号: H04L41/5006 H04L63/101

    摘要: A system and method of creating decentralized multi-party traceability of service-level agreements (SLAs) using a blockchain. The method including receiving a service request to provide a service according to a first service-level agreement (SLA) associated with a client. The method including generating a first dataset indicating a status associated with a first portion of the service. The method including identifying, based on the first SLA, a second service provider to provide a second portion of the service according to a second SLA. The method including retrieving, from a blockchain system based on the second SLA, a non-fungible token (NFT) associated with a second dataset indicating a status associated with the second portion of the service. The method including granting, by a processing device of a first service provider based on the NFT, access to a client device associated with the client to the first dataset and the second dataset.

    Rate negotiation method and apparatus thereof

    公开(公告)号:US11894991B2

    公开(公告)日:2024-02-06

    申请号:US17338311

    申请日:2021-06-03

    发明人: Ping Dong

    摘要: A rate negotiation method is provided. A first device switches a fiber transmission rate of a first port of the first device to a first fiber transmission rate based on a preset switching direction within a rotation period of a first fiber transmission rate set. The first device sends a negotiation packet to a second device through the first port of the first device within a duration of the first fiber transmission rate. If a response packet is received from the second device through the first port of the first device within the duration of the first fiber transmission rate, the first port of the first device is controlled to communicate with the second device based on the first fiber transmission rate.

    Network service processing method, system, and gateway device

    公开(公告)号:US11843518B2

    公开(公告)日:2023-12-12

    申请号:US17742341

    申请日:2022-05-11

    发明人: Wu Jiang

    摘要: This application discloses a network service processing method, a network service processing system, and a gateway device, to alleviate a problem that the gateway device cannot meet increasing additional function requirements. The gateway device identifies a type of a first intranet device, where the first intranet device belongs to an intranet connected to the gateway device. The gateway device obtains a first software package based on the type of the first intranet device, where the first software package is used to implement a first additional function. The gateway device sends a first indication message and the first software package to the first intranet device, where the first indication message is used to indicate the first intranet device to install the first software package and execute the first additional function.

    Model-based service placement
    8.
    发明授权

    公开(公告)号:US11757719B2

    公开(公告)日:2023-09-12

    申请号:US17459231

    申请日:2021-08-27

    摘要: An example computing device is configured to receive an instance of a customer service model representative of a plurality of customer services. Each of the plurality of customer services associated with a corresponding at least one requirement and a corresponding at least one constraint. The computing device is configured to receive an instance of a resource model representative of a plurality of resources and map the instance of the customer service model and the instance of the resource model to an internal placement model. The computing device is configured to allocate the plurality of resources to the plurality of customer services such that the at least one requirement and the at least one constraint for each of the plurality of customer services are satisfied and inverse map data indicating how the plurality of resources are allocated to a format consumable by the customer device and output the inverse mapped data.

    LEASE-BASED MANAGEMENT FOR ATOMIC COMMIT PROTOCOLS

    公开(公告)号:US20190188786A1

    公开(公告)日:2019-06-20

    申请号:US16270675

    申请日:2019-02-08

    发明人: Roie Melamed

    IPC分类号: G06Q30/06 H04L12/24

    CPC分类号: G06Q30/0645 H04L41/5006

    摘要: A transaction manager can obtain a first lease that dedicates a set of virtual resources to the transaction manager for a first time interval. The transaction manager can send a commit request to one or more resource managers regarding a first transaction. The transaction manager can store respective responses from each respective resource manager. The transaction manager can determine if each response is affirmative, and, if each response is affirmative, the transaction manager can complete the first transaction.